
flyphish
Deploy a phishing infrastructure on the fly.

Deploy a phishing infrastructure on the fly.

Collection of tools to use with Azure Applications

Repository of attack and defensive information for Business Email Compromise investigations

Initial Access and Post-Exploitation Tool for Entra ID and M365 with a browser-based GUI

Phishing simulation and awareness framework for node-based campaigns, credential capture, SMTP delivery, CAPTCHA, and optional browser credential…

A malicious OAuth application that can be leveraged for both internal and external phishing attacks targeting Microsoft Azure and Office365 users.

An offensive/defense security toolset for discovery, recon and ethical assessment of AI Agents

Azure RedOps is a offensive security toolkit for assessing the security posture of Microsoft Entra ID

All the deals for InfoSec related software/tools this Black Friday

A fork of the great TokenTactics with support for CAE and token endpoint v2

Terminal security for developers and AI agents. Intercepts homograph URLs, pipe-to-shell, ANSI injection, obfuscated payloads, data exfiltration, and…

Automated phishing campaign toolset that spawns dedicated AWS EC2 instances with integrated PhishingFrenzy and BeEF, plus subdomain discovery and…

a CLI for ephemeral penetration testing

A toolkit to attack Office365

Azure JWT Token Manipulation Toolset

Collection of offensive tools targeting Microsoft Azure

Vajra is a UI-based tool with multiple techniques for attacking and enumerating in the target's Azure and AWS environment. It features an intuitive…

Python-based CLI for automated red team infrastructure deployment on AWS and Digital Ocean, with modular support for C2, email servers, HTTP…